Typically, security researchers wait until vulnerabilities have been patched until announcing the issue.

A couple exercising with Peloton equipment

Peloton