If it is traffic that must go via VPN, then everything you configure giving preference to WAN2 must go through that link.
As far as I remember the documentation does not have this information, but theoretically the order is top-down.
Can you show your rule?
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.
Please, if this post was useful, leave your kudos and mark it as solved.