You have a major, major problem in your code.
In the above line you are appending the
string representation of the date object to the SQL query.
Here is what I would suggest you to do.
Change the code to make use of PreparedStatement. Then bind the java.sql.Date values to the query and execute the query.
Please make use of code tags when you post code snippets. It makes reading your code a lot easier.