Sonar finds a possible problem with SQL Injection in my code but I\'m 100% sure that it is impossible because the query does not have any params at all and the query string