
Guest Worldwide, a Sysco company
Guest Worldwide is a global collective of dynamic, industry-leading companies with more than 40 years of unparalleled experience serving the unique needs of diverse markets in every corner of the world.



Guest Worldwide is a global collective of dynamic, industry-leading companies with more than 40 years of unparalleled experience serving the unique needs of diverse markets in every corner of the world.

We’re the UK's biggest pub company, but that’s not all we are. We’re an incredible team bringing people together through our 4,500+ sites nationwide. Formed in 2010 with 333 pubs, Stonegate Group has grown bigger and better than ever, and today we’re home to well-loved sites such as Slug & Lettuce, Be At One, Walkabout, Popworld and so many more. But we didn’t get where we are just with great drinks and unforgettable experiences. We got here with the wonderful ideas and dedication of our team, from our front-line bar superstars to our head-office heroes and everyone in between. Without our team, we couldn’t have achieved all the brilliant things we have, and that’s why we’re here to make sure our colleagues are set up for just as much success as we are. With award-winning development programmes, proven Bar to Boardroom career pathways, apprenticeship opportunities to gain nationally-recognised qualifications, and training to learn fantastic new skills, we can prove that we value our colleagues just as much as our customers. We set up every part of our business for success, and we strive to be the best we can be for our guests and colleagues alike. Here at Stonegate, we live by our values. We invest wisely, we’re raring to go and we’re straightforward in all that we do. But above all, we’re one team, and we’re ready to take on the future together and have fun while we’re at it!
Security & Compliance Standards Overview












No incidents recorded for Guest Worldwide, a Sysco company in 2025.
No incidents recorded for Stonegate Group in 2025.
Guest Worldwide, a Sysco company cyber incidents detection timeline including parent company and subsidiaries
Stonegate Group cyber incidents detection timeline including parent company and subsidiaries
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘percentage’ parameter in all versions up to, and including, 5.4.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
The ComboServlet in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liferay DXP 2023.Q4.0 through 2023.Q4.2, 2023.Q3.1 through 2023.Q3.5, 7.4 GA through update 92, 7.3 GA through update 35, and older unsupported versions does not limit the number or size of the files it will combine, which allows remote attackers to create very large responses that lead to a denial of service attack via the URL query string.
A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and delete arbitrary directories on the target machine.
A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and create arbitrary directories on the target machine.
A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and delete arbitrary files on the target machine.