From the screenshots at the bottom, it looks like mainly SQL injection and outdated dependencies?
Does this mean that if I use single quotes or add whitespace inside the parentheses the vulnerability will not be detected?
https://github.blog/2019-09-18-github-welcomes-semmle/