REST where clause and SQL Injection

I'm trying to determine how safe it is to publish REST services for mash-up consumption. Specifically I am wondering if the WHERE clause for querying is vulnerable to any kind of SQL Injection attack?

