List all user’s crontab in bash:
for user in $(cut -f1 -d: /etc/passwd); do echo $user; crontab -u $user -l; done
Why should be useful take a look on already discovered XSS?
Because very often a single XSS vulnerability maybe replicated over the whole application or in a single part of it. apart from this it very interesting to understand methodology used by others to find vulnerability. So take a look at these lists and learn from already discovered XSS vulnerabilities:
Full list with link on https://github.com/jhaddix/tbhm/blob/master/06_SQLi.md
Image source: https://github.com/jhaddix/tbhm (video 42:25)