Seems like you've allowed port 53 on your router, which means your Pi-hole is publically accessible, which in turn means you are running an open resolver (and that's bad).
Never ever do this. Not even when you have installed another firewall on the target of your DMZ. Always only forward ports selectively. This is much safer and avoid such "side effects".