So this is a serious flaw, this is the basics of a firewall.
In the past I remember that it was possible to carry out this configuration, if in fact the Meraki engineering team changed this, they should review the concepts.
I've been working with Palo Alto for the last few months and I'm loving it, I think it's the best firewall I've ever worked on in my life.
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.
Please, if this post was useful, leave your kudos and mark it as solved.