I think this form of telemetry is far worse than the unlikely event someone uses an unfixed exploit against my OS to be honest. Although I would expect this kind of telemetry already implemented in Windows 7.
All it takes is going to one random website, that embeds ads, that embed an exploit kit. Not a new thing, we had this happen even with popular news sites. So yeah, it is more likely than you think.
I think in most cases the browser is far more relevant than the OS.
I didn't install the windows 7 telemetry updates (or the force upgrade to 8 updates, etc...)