Please toggle on this wireguard server option:
And on the wireguard client side, remove the route to the wireguard server public IP.
ip route del 1.2.3.4
It needs to be firmware 4.2.3 and above.
This way the traffic will go via VPN tunnel otherwise it will go via WAN interface which is not allowed by default.
We’ll address this issue in the next firmware.