If you see this, traffic reached the pod via App Gateway WAF.
Try these payloads to fire OWASP rules:
/?x=<script>alert(1)</script>
/?x=1' OR '1'='1
/?x=../../etc/passwd
/?x=() { :; }; echo vuln