With all of the talk of the TimThumb hack, this was a refreshing note I just got when I updated my WOO theme:
Old version of TimThumb detected in your theme folder. Click here to update.
Why is this important? Because WOO themes use a theme framework and that makes it easy to update. Who cares about easy to update? You do. Why do you care? Because it makes it easier to fix security breaches like this one with a single click. If your theme has the old TimThumb script and you need to replace it, you’ll need to FTP into your files, find the old version and replace it with the new one. Sure, doesn’t sound too difficult, but hey, it’s more than a single click. Thanks, WOO!
A new version of TimThumb is available.
This updater will remove the old version of TimThumb (thumb.php) in your theme folder, and use the new TimThumb in the WooFramework.