Risk of sql injection for custom search form

Risk of sql injection for custom search form